You are here

Yokogawa CENTUM (ICSA-20-224-01) – Products Used in the Energy Sector

Yokogawa CENTUM (ICSA-20-224-01) – Products Used in the Energy Sector

Created: Thursday, August 13, 2020 - 08:44

CISA has published an advisory on improper authentication and path traversal vulnerabilities in Yokogawa CENTUM. Multiple products and versions of the products are affected. Successful exploitation of these vulnerabilities could allow a remote unauthenticated attacker to send tampered communication packets or create/overwrite any file and run any commands. Yokogawa recommends a series of mitigation measures. CISA also recommends a series of measures to mitigate the vulnerabilities. Read the advisory at CISA.